Netgate Discussion Forum
    • Categories
    • Recent
    • Tags
    • Popular
    • Users
    • Search
    • Register
    • Login

    Traffic Shaper / Alias / Firewall Rule config Share

    Scheduled Pinned Locked Moved Traffic Shaping
    23 Posts 8 Posters 13.2k Views
    Loading More Posts
    • Oldest to Newest
    • Newest to Oldest
    • Most Votes
    Reply
    • Reply as topic
    Log in to reply
    This topic has been deleted. Only users with topic management privileges can see it.
    • S
      sideout
      last edited by

      Attached are some of the RRD Graphs from that weekend.

      NexusWAN01TrafficRRD.png
      NexusWAN01TrafficRRD.png_thumb
      NexusWAN02TrafficRRD.png
      NexusWAN02TrafficRRD.png_thumb
      NexusLANTrafficRRD.png
      NexusLANTrafficRRD.png_thumb
      NeXusRDDGraphLAN.png
      NeXusRDDGraphLAN.png_thumb
      NexusRDDGraphWAN2.png
      NexusRDDGraphWAN2.png_thumb
      NexusRDDGraphWAN1.png
      NexusRDDGraphWAN1.png_thumb
      NeXusRDDGraphOutbound.png
      NeXusRDDGraphOutbound.png_thumb

      1 Reply Last reply Reply Quote 0
      • C
        cabnet
        last edited by

        i made an alias also for lol my ping is 40 but someone watching video from youtube or from other site my lol ping suddenly increase to 300 may be lack of set up thats why this is happening.. i just made an alias and float only i need also to put a rule on lan? please share your set up thank you..

        1 Reply Last reply Reply Quote 0
        • O
          orientalsniper
          last edited by

          Check, the first message in this thread, links to dropbox.

          1 Reply Last reply Reply Quote 0
          • S
            sideout
            last edited by

            Here is a single WAN configuration.  I put it in a different dropbox so you wont have to get them mixed up.

            https://www.dropbox.com/s/68267ssgwcdack2/PFSenseSingleWAN.zip

            This is the same shaping and rules just with a single WAN.  Note I changed the name of the LAN interface so you can name it whatever.
            The limiter here is 25MB / 2.5MB since this will be on a 50MB/5MB modem.  Either delete the rule or change the limiter if you don't want to use it.

            1 Reply Last reply Reply Quote 0
            • S
              sideout
              last edited by

              Here is a screenshot of the single WAN configuration in action.  I have a custom LoL game going on with a Steam game download.  You can see the highlighted orange areas indicating LoL ping along with Steam download speed.  Granted this is just one client behind the router but I do have the limiter set in this case to 10Mbit and you can see I am getting close to that.

              SingleWANConfigDL.jpg
              SingleWANConfigDL.jpg_thumb

              1 Reply Last reply Reply Quote 0
              • S
                sideout
                last edited by

                I have added my configuration for Single WAN / Single LAN PRIQ setup.  Some things to note:

                1. Limiter for TCP is in effect with 8MB download / 1MB upload set so change it to suit your speeds.
                2. PRIQ is used versus HFSC.  DNS queries are under the qGames which is at priority 7.

                This is my first attempt at PRIQ compared to HFSC but it does seem that I am getting lower pings in a game (LoL) compared to HFSC.  I am seeing 95ms with PRIQ versus 112 - 120ms with HFSC. This is with Steam going in the background downloading at almost 1MB/sec. (See attached screenshot).

                Feel free to use and if you have suggestions or tips , they are greatly appreciated.

                Here is the link to the config on dropbox.  https://www.dropbox.com/s/6loxfax6k4xr78u/LANPARTYPRIQSLSW.zip

                ![PRIQ Shaping.jpg](/public/imported_attachments/1/PRIQ Shaping.jpg)
                ![PRIQ Shaping.jpg_thumb](/public/imported_attachments/1/PRIQ Shaping.jpg_thumb)

                1 Reply Last reply Reply Quote 0
                • M
                  mcwtim
                  last edited by

                  @sideout thank you for posting your configs. I do have a question for you. How does this setup deal with players abusing the network with bittorrent? A touchy issue especially with LoL as it uses a torrent like protocol (as does WoW).

                  I've put on LAN Parties with up to 400+ attendees and this is a continual thorn in my side. The only thing I've found that ever 'stopped' them was Untangle, but it caused issues for LoL players. We typically end up restricting everyone to a tiny amount of bandwidth which of course makes everyone else whine that youtube or game updates etc. are too slow.

                  1 Reply Last reply Reply Quote 0
                  • S
                    sideout
                    last edited by

                    The limiter handles that. The LAN rule with the limiter for TCP will divide up whatever bandwidth you set equally between everyone .

                    You can change that amount on the fly as you need. Typically I set it at like 30 to 40mbit for the first couple of hours then we throttle back as we start tourneys.

                    We have our LoL tourney on Sunday as well to help.

                    Also using the rule with the LoL server IP's help too .

                    1 Reply Last reply Reply Quote 0
                    • S
                      sideout
                      last edited by

                      So we have another LAN this weekend. There will be 4 modems being used for this configuration.  Using HFSC and will be allocating traffic to specific modems with LAN interface rules.  I will post up some results after the event.

                      1 Reply Last reply Reply Quote 0
                      • M
                        mcwtim
                        last edited by

                        @sideout:

                        The limiter handles that. The LAN rule with the limiter for TCP will divide up whatever bandwidth you set equally between everyone .

                        You can change that amount on the fly as you need. Typically I set it at like 30 to 40mbit for the first couple of hours then we throttle back as we start tourneys.

                        I've imported your Single WAN/Single LAN PRIQ configs into a clean install, the Limiter tab is empty. Tips?

                        1 Reply Last reply Reply Quote 0
                        • S
                          sideout
                          last edited by

                          It might have gotten left out. You can just manually create it.  I went back to HFSC instead of PRIQ. If I get a chance I will try and redo it.

                          1 Reply Last reply Reply Quote 0
                          • S
                            sideout
                            last edited by

                            I restored the shaper xml from the zip file and the limiter is there. I restored into my test system and then rebooted.  It is under Firewall / Traffic Shaper / Limiter tab for the settings of it and then under Firewall / Rules / LAN interface for the implemetation of it.

                            You might have to reboot after you restore the configuration to see it.

                            1 Reply Last reply Reply Quote 0
                            • S
                              sideout
                              last edited by

                              Here is another screenie of HFSC with the limiter in action.  I have a laptop on the LAN downloading from steam. Limiter is set to 8Mbits down  / 2.5Mbits upload.  I am on another PC running LoL.  LAN interface is limited to 20Mbits under qInternet and WAN's are limited to 5Mbits.  qGames has 20% realtime and 40% overall.  qWeb has 40% on the LAN side as well.  Granted this is not like a full LAN party but it gives you an idea of how it should work.

                              I have a 135 person LAN this weekend so I will post up screenies from that along with graphs and charts.

                              IngameLoLSteamdownloadHFSC.jpg
                              IngameLoLSteamdownloadHFSC.jpg_thumb

                              1 Reply Last reply Reply Quote 0
                              • M
                                mcwtim
                                last edited by

                                I used the Single WAN/Single LAN PRIQ setup at a 48 man LAN party yesterday. Everything worked very well. We were lucky to have an exceptional internet connection, 472Mb/407Mb which I limited to 350Mb/350Mb. In game pings to internet servers were in the 30-40ms range. I was using a LANcache setup as well. The whole setup worked so well that a 100Mb/12Mb connection would have provided the exact same experience.

                                I was fortunate to have a well behaved group of attendees, no one was abusing the network with torrents so really didn't get to see how it would have handled it. Given there were zero complaints even when people were downloading games I think the limiter would have handled it fine.

                                @sideout thanks again for the configs and advice given.

                                1 Reply Last reply Reply Quote 0
                                • S
                                  sideout
                                  last edited by

                                  Awesome!!! Glad it all worked good for you. I would love to be able to find a venue that had that Internet connection .

                                  1 Reply Last reply Reply Quote 0
                                  • D
                                    denielle8412
                                    last edited by

                                    @sideout:

                                    Here is a single WAN configuration.  I put it in a different dropbox so you wont have to get them mixed up.

                                    https://www.dropbox.com/s/68267ssgwcdack2/PFSenseSingleWAN.zip

                                    This is the same shaping and rules just with a single WAN.  Note I changed the name of the LAN interface so you can name it whatever.
                                    The limiter here is 25MB / 2.5MB since this will be on a 50MB/5MB modem.  Either delete the rule or change the limiter if you don't want to use it.

                                    Sir the link is dead … re-up please...

                                    1 Reply Last reply Reply Quote 0
                                    • D
                                      denielle8412
                                      last edited by

                                      @sideout:

                                      I have added my configuration for Single WAN / Single LAN PRIQ setup.  Some things to note:

                                      1. Limiter for TCP is in effect with 8MB download / 1MB upload set so change it to suit your speeds.
                                      2. PRIQ is used versus HFSC.  DNS queries are under the qGames which is at priority 7.

                                      This is my first attempt at PRIQ compared to HFSC but it does seem that I am getting lower pings in a game (LoL) compared to HFSC.  I am seeing 95ms with PRIQ versus 112 - 120ms with HFSC. This is with Steam going in the background downloading at almost 1MB/sec. (See attached screenshot).

                                      Feel free to use and if you have suggestions or tips , they are greatly appreciated.

                                      Here is the link to the config on dropbox.  https://www.dropbox.com/s/6loxfax6k4xr78u/LANPARTYPRIQSLSW.zip

                                      Sir the link is dead … re-up please...

                                      1 Reply Last reply Reply Quote 0
                                      • S
                                        sideout
                                        last edited by

                                        See my other reference threads in this forum.

                                        1 Reply Last reply Reply Quote 0
                                        • N
                                          Nukos
                                          last edited by

                                          Hello I can't seem to find any links from you in this forum with the dropbox links that is still alive. Can you please repost a live link for the configs it would help alot for us, thanks.

                                          1 Reply Last reply Reply Quote 0
                                          • M
                                            mcthr0
                                            last edited by

                                            Sir can you re upload again the file  because the link is broke thanks

                                            1 Reply Last reply Reply Quote 0
                                            • First post
                                              Last post
                                            Copyright 2025 Rubicon Communications LLC (Netgate). All rights reserved.